Adtran 1335 blocking port 25 outbound

PCGroup
PCGroup used Ask the Experts™
on
I need to block port 25 outbound for all IP's other than the mail server.  Current config is uploaded.
perimeter.txt
Comment
Watch Question

Do more with

Expert Office
EXPERT OFFICE® is a registered trademark of EXPERTS EXCHANGE®
Commented:
all you need to do is create an access list on the vlan that everyone uses, or on the outgoing port to the internet.

the access list will only need two rules, one to permit port 25 traffic to your server, then another rule, right below it that blocks access on port 25 to any server.

for example. say your mail server has the IP address 10.10.10.10, create an access lists that looks like this:

access-list 101 permit tcp any host 10.10.10.10. eq 25
access-list 101 deny any any

so on the interface or vlan you simply add the command:

interface fastethernet1/1
ip access group 101 outboud

Do more with

Expert Office
Submit tech questions to Ask the Experts™ at any time to receive solutions, advice, and new ideas from leading industry professionals.

Start 7-Day Free Trial